The FedRAMP policy pack can check a container image against known static FedRAMP controls to speed the authority to operate (ATO) process. The FedRAMP policy will verify container images are compliant with FedRAMP controls that can be verified prior to deployment. Verifying container images prior to deployment shortens audit cycles in FedRAMP environments.
The Anchore Enterprise FedRAMP policy pack can speed the authority to operate (ATO) process while also meeting FedRAMP's Vulnerability Scanning Requirements for container images. The FedRAMP policy will identify vulnerabilities in container images that contain secrets, confidential data, vulnerabilities, dangerous container build configurations, open ports, and more.
By identifying FedRAMP violations early in the development process these problems can be addressed before an auditor reviews the environment. Detecting violations is done in an automated manner that can allow developers to address findings before deployment.
Need Help?
If you have questions about our products, contact us at sales@anchore.com
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This listing uses a single pricing dimension: Product Access (Units). You buy access to the product under a contract, and the unit count sets your commitment. There are no separate tiers or size options on Marketplace — access is granted through this one dimension. The product delivers a FedRAMP policy pack that automates FedRAMP and NIST security control checks for containerized workloads. You get out-of-the-box policy validation, vulnerability scanning, and monthly compliance reporting. Because pricing is contract-based, you arrange the specific unit quantity and terms directly with the vendor.
Top-of-mind questions for buyers
What does one unit of Product Access represent for billing?
A unit grants access to the FedRAMP policy pack under your contract. The unit count sets the scope of your commitment. Because pricing is contract-based, the specific quantity and what each unit covers are arranged directly with the vendor, since the marketplace listing does not fix a per-unit resource definition.
Is this a usage-based product or an upfront commitment?
This is a contract-based purchase, not pay-as-you-go. You commit to a set unit quantity upfront rather than metering usage after the fact. Charges do not fluctuate with scan volume or activity. You agree to the terms and quantity with the vendor before access begins.
What capabilities does the FedRAMP policy pack include once I have access?
You get out-of-the-box policy validation against FedRAMP benchmarks, vulnerability scanning of container images, registry monitoring, continuous monitoring of production, and monthly vulnerability reporting for FedRAMP ConMon. It also supports STIG checks for hardened images and maps findings to specific control IDs.
www.anchore.com
Helpful?
Vendor refund policy
Refunds are not offered for this product.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
Anchore Enterprise is an SBOM-powered Software Composition Analysis (SCA) solution that provides scanning and continuous monitoring of cloud native applications enabling automated security and compliance across the entire software lifecycle (Code to Cloud).
Anchor Browser is agentic infrastructure for web automation, enabling AI agents to complete any web-based process by clicking, typing, navigating, and reasoning like a human in real time. It removes integration barriers across disconnected apps, making even complex manual workflows fully automatable.
Launch a ready to use Solana development server on Ubuntu 24.04 with Solana CLI, Rust, Anchor, Node.js, Yarn, Surfpool, and a starter workspace so you can build, test, and iterate faster without spending time on setup and dependency troubleshooting. This product has charges associated with it for the provision and deployment of the application and AMI support.
Solana Anchor Smart Contract Workbench with VS Code by Optick provides a ready to launch Ubuntu 24.04 development server for Solana smart contract work with Solana CLI, Anchor CLI, Rust, Node.js, Yarn, Surfpool, browser based VS Code, a managed local Solana validator, helper commands, first boot password generation, local development keypair generation, localnet SOL funding, and a compiled Anchor starter project. This product has charges associated with it for the provision and deployment of the application and AMI support.
Solana Anchor Smart Contract Workbench with VS Code by Optick provides a ready to launch Ubuntu development server for Solana smart contract work with Solana CLI, Anchor CLI, Rust, Node.js, Yarn, Surfpool, browser based VS Code, a managed local Solana validator, helper commands, first boot password generation, local development keypair generation, localnet SOL funding, and a compiled Anchor starter project. This product has charges associated with it for the provision and deployment of the application and AMI support.